NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
2277 | CVE-2008-2358 | Integer overflow in the dccp_feat_change function in net/dccp/feat.c in the Datagram Congestion Control Protocol (DCCP) subsystem in the Linux kernel 2.6.18, and 2.6.17 through 2.6.20, allows local users to gain privileges via an invalid feature length, which leads to a heap-based buffer overflow. | 2 | 7.2 | High | 2017-01-03 | 2010-11-16 | View | |
67813 | CVE-2005-2104 | sysreport before 1.3.7 allows local users to obtain sensitive information via a symlink attack on a temporary directory. | 2 | 2.1 | Low | 2017-07-18 | 2017-07-10 | View | |
2533 | CVE-2008-2627 | SQL injection vulnerability in the IDoBlog (com_idoblog) component b24 and earlier and 1.0, a component for Joomla!, allows remote attackers to execute arbitrary SQL commands via the userid parameter in a userblog action to index.php. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
68069 | CVE-2005-2377 | nss_ldap 181 to versions before 213, as used in Mandrake Corporate Server and Mandrake 10.0, and other operating systems, does not properly handle a SIGPIPE signal when sending a search request to an LDAP directory server, which might allow remote attackers to cause a denial of service (crond and other application crash) if they can cause an LDAP server to become unavailable. NOTE: it is not clear whether this attack scenario is sufficient to include this item in CVE. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
2789 | CVE-2008-2895 | Directory traversal vulnerability in index.php in AproxEngine 5.1.0.4 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the page parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-04-08 | View |
Page 15841 of 17672, showing 5 records out of 88360 total, starting on record 79201, ending on 79205